sslconfig

Cloudflare's Internet facing SSL configuration

Github stars Tracking Chart

sslconfig

Cloudflare's Internet facing SSL cipher configuration

This repository tracks the history of the SSL cipher configuration used for
Cloudflare's public-facing SSL web servers. The repository tracks an internal
Cloudflare repository, but dates may not exactly match when changes are made.

There is a single file called conf which contains the configuration used in
Cloudflare's NGINX servers. This is only a fragment of the configuration.

ChaCha20/Poly1305 patch

Cloudflare uses a patch for
OpenSSL that enables the ChaCha20/Poly1305 cipher suites and implements
special logic to ensure it is only taken if it is the client's top cipher
choice. Without this patch, the cipher suite choice in the configuration
will not work correctly.

Overview

Name With Ownercloudflare/sslconfig
Primary Language
Program language (Language Count: 0)
Platform
License:BSD 3-Clause "New" or "Revised" License
Release Count0
Created At2014-05-03 19:48:10
Pushed At2023-07-14 07:15:21
Last Commit At2019-10-18 15:51:06
Stargazers Count1.3k
Watchers Count153
Fork Count132
Commits Count47
Has Issues Enabled
Issues Count79
Issue Open Count20
Pull Requests Count11
Pull Requests Open Count7
Pull Requests Close Count10
Has Wiki Enabled
Is Archived
Is Fork
Is Locked
Is Mirror
Is Private
To the top